Summary
Overview
Work History
Education
Skills
Certification
Software
Timeline
Generic
Aishwarya Srinivasa Murthy

Aishwarya Srinivasa Murthy

Technical Project Manager | Technology Risk| GRC | CRISC | PMP
Bengaluru,KA

Summary

PMP and CRISC Certified Technology Risk & Governance Professional with extensive experience in leading enterprise risk assessments, IT audits, and compliance programs. Delivered risk mitigation initiatives through collaboration with engineering, cloud, and security teams, ensuring adherence to enterprise security standards. Focused on transitioning into Technical Project Management by leveraging leadership and technology governance expertise.

Overview

2
2
Certifications
8
8
years of professional experience

Work History

Information Security Analyst

Ralph Lauren
06.2024 - Current
  • Directed enterprise-wide assessments of technology risks impacting critical business applications and infrastructure.
  • Engaged with engineering, cloud security, and business teams to assess, rank, and address technology risks.
  • Coordinated concurrent governance initiatives with cross-functional stakeholders across global teams to align security practices.
  • Oversaw project timelines, milestones, dependencies, and risk mitigation strategies for security and compliance programs.
  • Engineered executive-level dashboards and reports for senior leadership illustrating risk posture and remediation status.
  • Managed governance meetings and verified on-time execution of audit observations and corrective action plans.
  • Coordinated with application owners in system implementations to integrate security and compliance requirements within project lifecycles.
  • Enhanced cloud migration projects through thorough technology risk assessments and control validations to mitigate potential threats.
  • Analyzed and supervising third-party security vendors' tools and managed service providers.
  • Strengthened audit readiness via consistent governance documentation and effective project tracking systems.
  • Mentored junior analysts and aligned project deliverables among geographically dispersed teams to ensure cohesive execution.
  • Advanced expertise in standards including iso/iec 27001 ensuring project alignment with legal requirements like GDPR and Indian data privacy regulations.

Information Security Risk Analyst 2

BCD Travel
08.2021 - 03.2023
  • Administered security risk assessments through GRC platform, scrutinizing and appraising risks connected to business operations, documenting security needs and recommendations for effective risk reduction.
  • Conducted extensive risk assessments leveraging recognized industry-standard methodologies and tools
  • Collaborated on ISO 27001, ITGC, SOX, CCPA, and GDPR frameworks to enhance implementation and risk management processes.
  • Engaged with ISO 27001, ITGC, SOX, CCPA, and GDPR frameworks related to implementation and risk management.
  • Conducted tabletop and onsite evaluations of key vendors to verify compliance with contractual agreements and industry standards.
  • Assessed information systems architectural designs and technical security implementations to identify gaps in security controls.
  • Facilitated privacy impact assessments (PIA) addressing personally identifiable information (PII)
  • Proficiency in establishing and enforcing secure procedures to safeguard sensitive information.
  • Excel in navigating dynamic information security landscape, driving proactive risk management strategies.

Information Security Auditor & Consultant

Robert Bosch Engineering And Business Solutions
01.2019 - 08.2021
  • Collaborated with top management to implement ISO27001 standards, enhancing organization's information security framework.
  • Conduct thorough audits and assessments to identify and mitigate potential cyber security threats.
  • Contributed to internal audit efforts that ensured compliance with information security protocols, safeguarding organizational assets.
  • Contributed to internal audit efforts focused on maintaining compliance with information security protocols.
  • Supported customers in performing audits at diverse locations.
  • Proficient in designing robust security measures and frameworks aimed at securing sensitive information.
  • Identity and access management for application engagement and data access for both sap and on sap user application holders.
  • Adept at leveraging innovative tools and technologies for detection, prevention, and response to security breaches.
  • Dept. at explaining technical concepts to non-technical stakeholders presenting actionable recommendations for advancing overall security posture.

Education

MBA - Data Science And Analytics

Jain University
Bengaluru
04.2001 -

Bachelor's of Engineering - Information Science And Engineering

The National Institute of Engineering
Mysuru
04.2001 -

Skills

Governance Risk Compliance

Security Compliance Management

Risk Management

Risk Assessment Planning

Security Architecture

Project management

Certification

Project Management Professional (PMP)

Software

One Trust / Jira

Congluence

SDLC and Software Delivery Life Cycle

Cloud and Fundamentals (Conceptual Understanding)

APIs and Microservices (Conceptual Understanding)

CI/CD Basics

AI tools for Project Management

Timeline

Information Security Analyst

Ralph Lauren
06.2024 - Current

Information Security Risk Analyst 2

BCD Travel
08.2021 - 03.2023

Information Security Auditor & Consultant

Robert Bosch Engineering And Business Solutions
01.2019 - 08.2021

MBA - Data Science And Analytics

Jain University
04.2001 -

Bachelor's of Engineering - Information Science And Engineering

The National Institute of Engineering
04.2001 -
Aishwarya Srinivasa MurthyTechnical Project Manager | Technology Risk| GRC | CRISC | PMP